Mozi.a

First submission 2024-06-03 07:48:32 Last sumbission 2024-07-27 03:11:32

File details

File type: ELF 32-bit MSB executable, MIPS, MIPS-I version 1 (SYSV), statically linked, no section header
Mime type: application/x-executable
File size: 132.6 KB (135784 bytes)
MD5: d41d8cd98f00b204e9800998ecf8427e
SHA1: 5857a7dd621c4c3ebb0b5a3bec915d409f70d39f
SHA256: 4293c1d8574dc87c58360d6bac3daa182f64f7785c9d41da5e0741d2b1817fc7

File features detected

Is DLL
Packers
Anti Debug
Anti VM
Signed
XOR

OSINT Enrichments

URLs, FQDN and IP indicators 35

URL Host (FQDN/IP) Date Added
hXXp://58.47.90.158:36938/Mozi.a VirusTotal Report 58.47.90.158 VirusTotal Report 2024-07-27 03:11:33
hXXp://113.239.110.145:38279/i VirusTotal Report 113.239.110.145 VirusTotal Report 2024-07-27 02:54:32
hXXp://42.53.251.106:44305/bin.sh VirusTotal Report 42.53.251.106 VirusTotal Report 2024-07-27 01:12:33
hXXp://110.182.81.18:38887/Mozi.m VirusTotal Report 110.182.81.18 VirusTotal Report 2024-07-26 18:45:33
hXXp://120.211.70.84:51348/i VirusTotal Report 120.211.70.84 VirusTotal Report 2024-07-26 18:34:32
hXXp://112.248.117.218:48372/bin.sh VirusTotal Report 112.248.117.218 VirusTotal Report 2024-07-26 15:40:33
hXXp://42.234.138.55:37305/i VirusTotal Report 42.234.138.55 VirusTotal Report 2024-07-26 10:39:33
hXXp://123.4.64.211:53153/bin.sh VirusTotal Report 123.4.64.211 VirusTotal Report 2024-07-26 10:23:32
hXXp://120.211.222.79:39836/bin.sh VirusTotal Report 120.211.222.79 VirusTotal Report 2024-07-26 07:19:32
hXXp://101.68.57.247:52227/i VirusTotal Report 101.68.57.247 VirusTotal Report 2024-07-26 04:24:33
hXXp://123.173.69.226:38683/bin.sh VirusTotal Report 123.173.69.226 VirusTotal Report 2024-07-26 03:14:33
hXXp://175.149.177.224:47728/bin.sh VirusTotal Report 175.149.177.224 VirusTotal Report 2024-07-25 20:52:33
hXXp://61.176.211.70:53856/bin.sh VirusTotal Report 61.176.211.70 VirusTotal Report 2024-07-25 16:22:32
hXXp://120.211.69.86:47457/i VirusTotal Report 120.211.69.86 VirusTotal Report 2024-07-25 15:30:33
hXXp://223.8.10.19:33633/Mozi.m VirusTotal Report 223.8.10.19 VirusTotal Report 2024-07-25 13:21:32
hXXp://221.1.226.133:55739/i VirusTotal Report 221.1.226.133 VirusTotal Report 2024-07-25 12:25:32
hXXp://110.183.57.20:44388/i VirusTotal Report 110.183.57.20 VirusTotal Report 2024-07-25 05:24:32
hXXp://115.55.159.52:60606/bin.sh VirusTotal Report 115.55.159.52 VirusTotal Report 2024-07-25 05:06:33
hXXp://223.8.221.139:35731/i VirusTotal Report 223.8.221.139 VirusTotal Report 2024-07-25 04:24:33
hXXp://110.183.57.20:44388/bin.sh VirusTotal Report 110.183.57.20 VirusTotal Report 2024-07-25 04:18:33
hXXp://36.104.221.166:53651/Mozi.a VirusTotal Report 36.104.221.166 VirusTotal Report 2024-07-24 20:46:32
hXXp://42.59.90.107:36505/bin.sh VirusTotal Report 42.59.90.107 VirusTotal Report 2024-07-24 18:49:32
hXXp://175.146.225.93:39286/i VirusTotal Report 175.146.225.93 VirusTotal Report 2024-07-24 13:08:32
hXXp://120.211.41.13:57790/bin.sh VirusTotal Report 120.211.41.13 VirusTotal Report 2024-07-24 12:46:33
hXXp://175.31.168.207:44584/i VirusTotal Report 175.31.168.207 VirusTotal Report 2024-07-24 01:47:33
hXXp://223.12.206.49:40390/i VirusTotal Report 223.12.206.49 VirusTotal Report 2024-07-23 18:06:32
hXXp://60.161.61.223:42021/bin.sh VirusTotal Report 60.161.61.223 VirusTotal Report 2024-07-23 10:43:33
hXXp://123.190.2.12:37284/bin.sh VirusTotal Report 123.190.2.12 VirusTotal Report 2024-07-21 08:01:33
hXXp://114.216.152.140:51865/bin.sh VirusTotal Report 114.216.152.140 VirusTotal Report 2024-07-21 05:08:32
hXXp://1.70.137.67:50169/Mozi.m VirusTotal Report 1.70.137.67 VirusTotal Report 2024-07-21 00:13:32
hXXp://117.84.253.156:43308/bin.sh VirusTotal Report 117.84.253.156 VirusTotal Report 2024-07-20 13:05:33
hXXp://106.41.138.220:32956/Mozi.m VirusTotal Report 106.41.138.220 VirusTotal Report 2024-07-20 11:52:33
hXXp://112.245.243.3:39447/bin.sh VirusTotal Report 112.245.243.3 VirusTotal Report 2024-07-20 09:33:32
hXXp://42.87.204.76:53765/bin.sh VirusTotal Report 42.87.204.76 VirusTotal Report 2024-07-20 09:15:32
hXXp://120.211.201.252:59977/i VirusTotal Report 120.211.201.252 VirusTotal Report 2024-07-20 09:13:33

Strings analysis - File found

XML
M7c.xml

Strings analysis - Possible URLs found 1

http://upx.sf.net